Started By
Message

re: Job with Ernst and Young

Posted on 5/20/23 at 9:08 pm to
Posted by Centinel
Idaho
Member since Sep 2016
43403 posts
Posted on 5/20/23 at 9:08 pm to
quote:

For instance, I did an assessment related to Information Security for a major computer manufacturer. The client wanted findings "adjusted" in a way I considered unethical.


InfoSec guy here myself. This doesn't surprise me one bit after some dealings I've had in the past with various clients. Most big corps (who haven't been bit in the arse) really don't give two shits about actually securing their networks and endpoints, they just want to check the regulatory audit blocks. And have no problem "fixing the books" as it were to check those blocks.

Which is why I have permanent job security, and big corps still get popped every year.
This post was edited on 5/20/23 at 9:10 pm
Posted by LemmyLives
Texas
Member since Mar 2019
6553 posts
Posted on 5/20/23 at 9:24 pm to
quote:

InfoSec guy here myself.


To some extent, InfoSec creates this problem themselves. A lot of us, especially the more technical they are, have a real problem explaining the business impact of findings. 31,000 unpatched vulnerabilities in production? So what?
first pageprev pagePage 1 of 1Next pagelast page
refresh

Back to top
logoFollow TigerDroppings for LSU Football News
Follow us on Twitter, Facebook and Instagram to get the latest updates on LSU Football and Recruiting.

FacebookTwitterInstagram